VulnSea

Daily digest

Tuesday 12 May 2026

A heavy day: 78 new CVEs, well above the recent average of about 47. Severity skewed high: 9 critical and 47 high, 72% of the total. 3 arrived with exploitation evidence or public exploit code already attached. adobe was the most-affected vendor with 38.

78
New CVEs
9
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 78 published.

CVE-2026-40369High· 7.8PoC
4mo ago

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

▾ MidnightEPSS 0.33%via NVD
CVE-2026-31233Critical· 9.8
4mo ago

Guardrails AI contains a code injection vulnerability in its Hub package installation mechanism

Guardrails AI contains a code injection vulnerability in its Hub package installation mechanism

▾ Midnightguardrails-ai · guardrails-aiEPSS 0.93%via OSV
CVE-2026-26083Critical· 9.8
4mo ago

A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, FortiSandbox PaaS 23.3 all versions, Forti…

A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, FortiSandbox PaaS 23.3 all versions, Forti…

▾ Midnightfortinet · fortisandboxEPSS 0.50%via NVD
CVE-2026-34659Critical· 9.6
4mo ago

Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user

Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this v…

▾ Midnightadobe · connect_desktop_applicationEPSS 1.9%via NVD
CVE-2026-41293High· 7.3PoC⚖ disputed
4mo ago

tomcat-coyote: Apache Tomcat: HTTP/2 request headers not validated (CVE-2026-41293)

Apache Tomcat did not validate HTTP/2 request headers, triggering unexpected application behavior, as applications may presume that header values exposed through the Servlet API would be valid.

▾ MidnightRed Hat · Red Hat Enterprise Linux AppStream EUS (v. 10.0)EPSS 1.7%via CSAF
CVE-2026-34660Critical· 9.3
4mo ago

Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user

Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerabil…

▾ Midnightadobe · connect_desktop_applicationEPSS 1.0%via NVD
CVE-2026-44221Critical· 9.0
4mo ago

ArcadeDB is a Multi-Model DBMS

ArcadeDB is a Multi-Model DBMS. Starting in version 21.10.1 and prior to version 26.4.2, authenticated users and API tokens scoped to a specific database could read, write, and mutate schema on any other database on the same server. Two …

▾ MidnightEPSS 0.43%via NVD
CVE-2026-25787Critical· 9.1
4mo ago

Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface

Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA pro…

▾ MidnightEPSS 0.54%via NVD
CVE-2026-25786Critical· 9.1
4mo ago

Affected devices do not properly validate and sanitize PLC/station name rendered on the "communication" parameters page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into th…

Affected devices do not properly validate and sanitize PLC/station name rendered on the "communication" parameters page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into th…

▾ MidnightEPSS 0.54%via NVD
CVE-2026-22924Critical· 9.1
4mo ago

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0)

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhaustion conditions. This could allow an atta…

▾ MidnightEPSS 0.30%via NVD
CVE-2025-40949Critical· 9.1
4mo ago

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1500 (All versions < V2.17.1), RUGGEDCO…

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1500 (All versions < V2.17.1), RUGGEDCO…

▾ MidnightEPSS 0.67%via NVD
CVE-2026-41109High· 8.8
4mo ago

GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerability

Improper neutralization of special elements in output used by a downstream component ('injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to bypass a security feature over a network.

▾ TwilightMicrosoft · Visual Studio CodeEPSS 0.86%via CVEORG

Most-affected vendors

By CVEs published in the period.